WTWHIZZTRACK

Draft — not yet reviewed by a solicitor. This describes the processing this software actually does, in the shape UK GDPR Article 28 requires of an agreement between a controller and a processor. The bracketed operator details, and the international-transfer position below, need confirming before this is final.

Data Processing Agreement

Draft — last updated 23 September 2026.

The parties

The dealership using WhizzTrack is the controller of its customers’ personal data — it decides who to sell to, what to record about them, and why. [Operator legal name — to be added] is the processor: it stores and processes that data only on the dealership’s instructions, given by using the software. This agreement applies for as long as a dealership holds an account.

Subject matter, duration and purpose

Processing customer records so a dealership can run its stock book: recording a sale, booking an appointment, issuing an invoice, and keeping the financial record HMRC requires. It lasts for as long as the dealership’s account is open, and for sale and invoice records specifically, six years from the end of the financial year of the sale regardless of account status, after which the buyer’s personal details are removed automatically (at most seven years after their last dealings) — the same retention already described in the Privacy Policy.

Whose data, and what kind

Data subjects: a dealership’s customers (people who have bought, viewed, or enquired about a car), and its own staff.

Categories of data: name, address, phone number, email, marketing preference; vehicle and sale details tied to them (price, deposit, whether finance was used and with which lender — never a credit score, application, or check, since this software does not run one); and, for staff, a hashed password and role. No special category data (health, ethnicity, and the rest of UK GDPR Article 9) is deliberately collected by any part of this software.

Sub-processors

The same ones named in the Privacy Policy, and only these unless this page is updated first:

International transfers

Anthropic, Resend, Sentry and Stripe are US companies. A document sent to Anthropic for reading (only whatever text is on the vehicle document itself), a staff member’s email address sent through Resend, and a crash report sent to Sentry are each a transfer of personal data outside the UK, and each needs a lawful transfer mechanism (the UK International Data Transfer Addendum, most likely) confirmed and named here before this is final. [Operator to confirm with each company’s own data processing terms and add the mechanism relied on.]

What the processor does

Liability

[Operator to add, with a solicitor: liability and indemnity terms consistent with the Terms of Service, and any audit rights a dealership is given under this agreement.]